Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 passwd[741]: password for 'ubuntu' changed by 'root' Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 systemd-logind[773]: New seat seat0. Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 systemd-logind[773]: Watching system buttons on /dev/input/event0 (Power Button) Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 systemd-logind[773]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 sshd[827]: Server listening on 0.0.0.0 port 22. Feb 6 07:11:21 prd-ubuntu2204-docker-8c-8g-5660 sshd[827]: Server listening on :: port 22. Feb 6 07:11:24 prd-ubuntu2204-docker-8c-8g-5660 sshd[1003]: error: kex_exchange_identification: Connection closed by remote host Feb 6 07:11:24 prd-ubuntu2204-docker-8c-8g-5660 sshd[1003]: Connection closed by 10.30.104.4 port 60504 Feb 6 07:11:32 prd-ubuntu2204-docker-8c-8g-5660 sshd[1011]: Invalid user jenkins from 10.30.104.4 port 60508 Feb 6 07:11:32 prd-ubuntu2204-docker-8c-8g-5660 sshd[1011]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:32 prd-ubuntu2204-docker-8c-8g-5660 sshd[1011]: Received disconnect from 10.30.104.4 port 60508:11: Closed due to user request. [preauth] Feb 6 07:11:32 prd-ubuntu2204-docker-8c-8g-5660 sshd[1011]: Disconnected from invalid user jenkins 10.30.104.4 port 60508 [preauth] Feb 6 07:11:34 prd-ubuntu2204-docker-8c-8g-5660 sshd[1013]: Invalid user jenkins from 10.30.104.4 port 60516 Feb 6 07:11:34 prd-ubuntu2204-docker-8c-8g-5660 sshd[1013]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:34 prd-ubuntu2204-docker-8c-8g-5660 sshd[1013]: Received disconnect from 10.30.104.4 port 60516:11: Closed due to user request. [preauth] Feb 6 07:11:34 prd-ubuntu2204-docker-8c-8g-5660 sshd[1013]: Disconnected from invalid user jenkins 10.30.104.4 port 60516 [preauth] Feb 6 07:11:36 prd-ubuntu2204-docker-8c-8g-5660 sshd[1015]: Invalid user jenkins from 10.30.104.4 port 60524 Feb 6 07:11:36 prd-ubuntu2204-docker-8c-8g-5660 sshd[1015]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:36 prd-ubuntu2204-docker-8c-8g-5660 sshd[1015]: Received disconnect from 10.30.104.4 port 60524:11: Closed due to user request. [preauth] Feb 6 07:11:36 prd-ubuntu2204-docker-8c-8g-5660 sshd[1015]: Disconnected from invalid user jenkins 10.30.104.4 port 60524 [preauth] Feb 6 07:11:38 prd-ubuntu2204-docker-8c-8g-5660 sshd[1096]: Invalid user jenkins from 10.30.104.4 port 60530 Feb 6 07:11:39 prd-ubuntu2204-docker-8c-8g-5660 sshd[1096]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:39 prd-ubuntu2204-docker-8c-8g-5660 sshd[1096]: Received disconnect from 10.30.104.4 port 60530:11: Closed due to user request. [preauth] Feb 6 07:11:39 prd-ubuntu2204-docker-8c-8g-5660 sshd[1096]: Disconnected from invalid user jenkins 10.30.104.4 port 60530 [preauth] Feb 6 07:11:41 prd-ubuntu2204-docker-8c-8g-5660 sshd[1324]: Invalid user jenkins from 10.30.104.4 port 60534 Feb 6 07:11:41 prd-ubuntu2204-docker-8c-8g-5660 sshd[1324]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:41 prd-ubuntu2204-docker-8c-8g-5660 sshd[1324]: Received disconnect from 10.30.104.4 port 60534:11: Closed due to user request. [preauth] Feb 6 07:11:41 prd-ubuntu2204-docker-8c-8g-5660 sshd[1324]: Disconnected from invalid user jenkins 10.30.104.4 port 60534 [preauth] Feb 6 07:11:43 prd-ubuntu2204-docker-8c-8g-5660 sshd[1330]: Invalid user jenkins from 10.30.104.4 port 60544 Feb 6 07:11:43 prd-ubuntu2204-docker-8c-8g-5660 sshd[1330]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Feb 6 07:11:43 prd-ubuntu2204-docker-8c-8g-5660 sshd[1330]: Received disconnect from 10.30.104.4 port 60544:11: Closed due to user request. [preauth] Feb 6 07:11:43 prd-ubuntu2204-docker-8c-8g-5660 sshd[1330]: Disconnected from invalid user jenkins 10.30.104.4 port 60544 [preauth] Feb 6 07:11:44 prd-ubuntu2204-docker-8c-8g-5660 useradd[1352]: new group: name=jenkins, GID=1001 Feb 6 07:11:44 prd-ubuntu2204-docker-8c-8g-5660 useradd[1352]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash, from=none Feb 6 07:11:44 prd-ubuntu2204-docker-8c-8g-5660 usermod[1361]: add 'jenkins' to group 'docker' Feb 6 07:11:44 prd-ubuntu2204-docker-8c-8g-5660 usermod[1361]: add 'jenkins' to shadow group 'docker' Feb 6 07:11:45 prd-ubuntu2204-docker-8c-8g-5660 sshd[1394]: Accepted publickey for jenkins from 10.30.104.4 port 60546 ssh2: RSA SHA256:V0799BjlU//1ruj1g81rY7MeNIJkwAJ0Kr3lNX3XaN4 Feb 6 07:11:45 prd-ubuntu2204-docker-8c-8g-5660 sshd[1394]: pam_unix(sshd:session): session opened for user jenkins(uid=1001) by (uid=0) Feb 6 07:11:45 prd-ubuntu2204-docker-8c-8g-5660 systemd-logind[773]: New session 1 of user jenkins. Feb 6 07:11:45 prd-ubuntu2204-docker-8c-8g-5660 systemd: pam_unix(systemd-user:session): session opened for user jenkins(uid=1001) by (uid=0) Feb 6 07:12:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[1878]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:12:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[1878]: pam_unix(cron:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/java java /usr/lib/jvm/java-21-openjdk-amd64/bin/java 1 Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/javac javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac 1 Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/lib/jvm/java-openjdk java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 1 Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java /usr/lib/jvm/java-21-openjdk-amd64/bin/java Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Feb 6 07:12:44 prd-ubuntu2204-docker-8c-8g-5660 sudo: pam_unix(sudo:session): session closed for user root Feb 6 07:13:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[2148]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:13:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[2148]: pam_unix(cron:session): session closed for user root Feb 6 07:14:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[2732]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:14:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[2732]: pam_unix(cron:session): session closed for user root Feb 6 07:15:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[3534]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:15:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[3534]: pam_unix(cron:session): session closed for user root Feb 6 07:16:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[4523]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:16:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[4523]: pam_unix(cron:session): session closed for user root Feb 6 07:17:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[5780]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:17:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[5781]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Feb 6 07:17:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[5781]: pam_unix(cron:session): session closed for user root Feb 6 07:17:01 prd-ubuntu2204-docker-8c-8g-5660 CRON[5780]: pam_unix(cron:session): session closed for user root Feb 6 07:17:09 prd-ubuntu2204-docker-8c-8g-5660 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/cp /var/log/auth.log /tmp